package com.xy.controller;

import org.springframework.stereotype.Controller;
import org.springframework.ui.Model;
import org.springframework.web.bind.annotation.RequestMapping;
import org.springframework.web.bind.annotation.RequestParam;

import javax.servlet.http.HttpSession;

@Controller
public class LoginController {

    @RequestMapping("/user/login")
    public String login(@RequestParam("username")String username, @RequestParam("password")String password, Model model, HttpSession session){
        if ("admin".equals(username)&&"123456".equals(password)){
            //登录成功
            //存储session
            session.setAttribute("username",username);
            return "redirect:/main.html";
        }else {
            //登录失败
            model.addAttribute("msg","用户名或密码错误!");
            return "index";
        }
    }

    //退出登录
    @RequestMapping("/user/loginout")
    public String loginOut(HttpSession session){
        //清除用户的session
        session.invalidate();
        return "redirect:/index";
    }
}
